Data Management Flashcards
What is the meaning of a NDA?
- Non disclosure agreements are used to protect against the disclosure or sharing of confidential data
- Prior to data being shared with recipients, clients will typically request that one is signed
Who are key persons outlined within GDPR?
Controller - natural person who determines the purposes and means of processing the data (when employees personal data, the employer is the controller)
Processor - natural person that processes personal data on behalf of the controller
DPO - leadership role required by GDPR. Oversees data protection approach, strategy
What are the 8 individual rights under GDPR?
Right to be/ of:
informed
access
rectification
erasure
resitrict processing
data portability
object
automated decision making and profiling
What things must companies put in place to ensure GDPR compliance?
- Raise awareness across the business
- Audit all personal data
- Review procedures
- Identify and docuemnt your legal basis for processing personal data under GDPR
- review how you seek, obtain and record consent
Tell me about the Freedom of Information Act 2000
- Gives individuals the right of access to information held by public bodies
- Supply it within 20 working days
- 2 exemptions
Who polices GDPR?
Information Commissioners Office
Fine for breaching GDPR
Larger of 4% Global turnover or £17.5m
What do you need to do in a data breach?
Report to ICO within 72 hours where there is a risk of harm to individuals
What is GDPR?
A data protection regime affecting businesses and empowering individuals to take control of how their data is used by 3rd parties
Penalty for breaching NDA
Can be sued for damages for losses incurred
Key Principles of GDPR
Article 5(1): Principles relating to storage of personal data:
- Processed lawfully
Collected for specific, legitimate purposes
Kept accurate and up to date
Kept limited for what is necessary for purposes
Kept securely
How do you keep data secure?
- encryption
- firewalls
- password
- backups
- cbre file transfer
- controlling access
- secure file storage